Hello dears,
first i created client in FAC then i go to FG and tried to add the RADUIS server
but when i put the IP of FAC and the secret and i try the connection status this msg appear : Can't contact RADIUS server
i can ping the fortiauthenticator from the fortigate
i need help to troubleshoting this please
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Take a look at this KB. You can enable a debug and then test the credentials. This should give you an indication of where the process is failing:
Also check the following on FortiAuthenticator:
- in addition to the RADIUS client, do you have a policy (or a profile, if your FAC is 6.0 or lower)?
- do you allow RADIUS on the FortiAuthenticator's interface (System > Network > Interface)?
- you can run a sniffer on FortiAuthenticator CLI to verify that RADIUS traffic is arriving:
#exe tcpdump -i any -c 1000 port 1812
- if RADIUS is arriving on FortiAuthenticator, and is allowed on the interface, you can check RADIUS debug on FortiAuthenticator GUI: https://<FortiAuthenticator>/debug/radius
Hope this helps!
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1732 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.